CVE-2024-46954 Information

Description

An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads to possible ../ directory traversal.

Reference

https://bugs.ghostscript.com/show_bug.cgi?id=707788 https://github.com/ArtifexSoftware/ghostpdl/blob/master/doc/News.html https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=55f587dd039282316f512e1bea64218fd991f934

Share on: